¡¾·ì϶¹«¸æ¡¿SonicWall Analytics Ô¶³Ì´úÂëÖ´Ðзì϶ (CVE-2021-20032)

°ä²¼¹¦·ò 2021-08-17


0x00 ·ì϶¸ÅÊö

CVE     ID

CVE-2021-20032

ʱ      ¼ä

2021-08-10

Àà      ÐÍ

RCE

µÈ      ¼¶

ÑϳÁ

Ô¶³ÌÀûÓÃ

ÊÇ

Ó°ÏìÁìÓò


¹¥»÷¸´ÔÓ¶È


¿ÉÓÃÐÔ


Óû§½»»¥


ËùÐèȨÏÞ


PoC/EXP

δ¹«¿ª

ÔÚÒ°ÀûÓÃ

·ñ

 

0x01 ·ì϶ÏêÇé

image.png

SonicWALL Analyzer ÊÇSonicWALLÍÆ³öµÄÀûÓÃÁ÷Á¿·ÖÎö½â¾ö¹æ»®Ö®Ò»£¬Ö§³ÖSonicWALL·À»ðǽµÈ²úÆ·¡£AnalyzerÖØÒªÎªITÖÎÀíÈËÔ±ÌṩʵʱºÍº¹ÇàÀûÓÃÁ÷Á¿·ÖÎöÓ밲ȫÊÂÎñ»ã±¨£¬´Ó¶øÊ¹Æä¾ß±¸Éî¿Ì·ÖÎöÍøÂç»úÄÜÓ밲ȫµÄÄÜÁ¦¡£

2021Äê8ÔÂ17ÈÕ£¬SonicWALL°ä²¼°²È«²¼¸æ£¬½¨¸´ÁËSonicWall AnalyticsÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2021-20032£©£¬ÆäCVSSv3ÆÀ·ÖΪ9.8¡£

ÓÉÓÚSonicWall Analytics On-Prem£¨±¾µØ£©µÄijЩ°æ±¾ÖÐJava Debug Wire Protocol£¨JWDP£©½Ó¿Ú°²È«ÅäÖÃÃýÎó£¬Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓô˷ì϶ÔÚϵͳÉÏÖ´ÐÐËÁÒâ´úÂë¡£


Ó°ÏìÁìÓò

Analytics On-Prem <= 2.5.2518

 

0x02 ´ëÖý¨Òé

Ŀǰ´Ë·ì϶ÒѾ­½¨¸´¡£½¨ÒéÊÜÓ°ÏìÓû§ÊµÊ±Éý¼¶¸üе½Analytics On-Prem 2.5.2519 »ò¸ü¸ß°æ±¾¡£

һʱ»º½â´ëÊ©

×èÖ¹¶ÔÊÜÓ°Ïì°æ±¾ÉϵÄ9000/TCP¶Ë¿ÚµÄ½Ó¼û¡£

×¢£ºSonicWall Analytics 2.5 ¼°¸üÔç°æ±¾µÄ²¿ÊðÊDZ¾µØ²¿Êð£¬Ó¦Î»ÓÚÄÚ²¿°²È«ÍøÂç·Ö¶ÎÖС£

ÏÂÔØÁ´½Ó£º

https://mysonicwall.com/

 

0x03 ²Î¿¼Á´½Ó

https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0018

https://www.sonicwall.com/support/product-notification/?sol_id=210809113238240

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-20032

 

0x04 ¸üа汾

°æ±¾

ÈÕÆÚ

Åú¸ÄÄÚÈÝ

V1.0

2021-08-17

³õ´Î°ä²¼

 

0x05 Îĵµ¸½Â¼

CNVD£ºwww.cnvd.org.cn

CNNVD£ºwww.cnnvd.org.cn

CVE£ºcve.mitre.org

NVD£ºnvd.nist.gov

CVSS£ºwww.first.org

 

0x06 ¹ØÓÚGA»Æ½ð¼×

¹Ø×¢ÒÔϹ«¼ÒºÅ£¬»ñÈ¡¸ü¶à×ÊѶ£º

image.png